| GHSA-jxrp-r7gx-q4j8 | |
| Cross-site Scripting (XSS) | |
| GHSA-8988-9cw3-xx77 | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| GHSA-g5vv-9gxw-82hx | |
| GHSA-239g-whfq-7xj9 | |
| Inefficient Regular Expression Complexity | |
| GHSA-gh4c-6fx4-qh6g | |
| GHSA-whh4-5q6c-9v3x | |
| GHSA-2pxq-5vcg-rq29 | |
| Allocation of Resources Without Limits or Throttling | |
| Arbitrary Code Injection | |
| GHSA-qpf5-3wfw-fh7q | |
| Improper Certificate Validation | |
| GHSA-vxq7-64xx-v4gw | |
| CVE-2026-49265 | |
| CVE-2026-49264 | |
| GHSA-xpv3-w29h-x7cv | |
| GHSA-hj66-6f7g-4r5v | |
| CVE-2026-59890 | |
| GHSA-h35f-9h28-mq5c | |
| GHSA-fp7w-m676-w7gc | |
| GHSA-x7qq-23vw-7pfg | |
| Session Fixation | |
| GHSA-vqg6-3fw6-j9jg | |
| Cross-site Request Forgery (CSRF) | |
| Authentication Bypass | |
| Improper Authentication | |
| GHSA-vq6g-g6c7-5f2j | |
| GHSA-3c93-f73f-qc9h | |
| Improper Authentication | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| GHSA-hxp9-w8x3-p566 | |
| GHSA-2883-xcg3-v3hh | |
| Arbitrary Argument Injection | |
| Resource Exhaustion | |
| GHSA-w672-239g-c3gr | |
| External Control of File Name or Path | |
| GHSA-m4f3-g4cq-hqrx | |
| Information Exposure | |
| Arbitrary Command Injection | |
| Uncontrolled Recursion | |
| GHSA-4vpg-pfj8-m33q | |
| Directory Traversal | |
| OS Command Injection | |
| GHSA-7jx3-jqcp-hhgc | |
| GHSA-3mcp-22mf-vrw3 | |
| Arbitrary Argument Injection | |
| GHSA-6r2r-ww24-7h52 | |
| Arbitrary Argument Injection | |
| GHSA-55q2-fjhq-7xh7 | |
| Resource Exhaustion | |
| Information Exposure | |
| GHSA-g47c-3xmw-q6m2 | |
| GHSA-2m8g-3cmr-wg3w | |
| GHSA-68jp-44vc-2x5h | |
| Information Exposure | |
| GHSA-9wx3-p993-35vp | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-fqj3-h9pc-443h | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| Permissive Whitelist | |
| GHSA-39j5-w47m-2gmv | |
| GHSA-fq2j-3j99-rx65 | |
| GHSA-6hqm-hm2v-3p2p | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-4ww2-rjh2-xpv9 | |
| GHSA-f2r5-pqh9-r8f8 | |
| GHSA-5p4m-2wfm-xmqj | |
| GHSA-p538-c434-8v24 | |
| GHSA-grgv-6hw6-v9g4 | |
| GHSA-539m-9xh6-q6rr | |
| GHSA-g6cj-pr64-35w5 | |
| GHSA-mfx4-hv73-q22v | |
| GHSA-9rj7-rf2p-w77r | |
| Out-of-bounds Read | |
| GHSA-hmq2-w58f-27jc | |
| GHSA-wvpp-8hx9-p66j | |
| GHSA-jm78-9fvv-mhgr | |
| Resource Exhaustion | |
| GHSA-3f7w-8rr8-f37f | |
| GHSA-cq5v-8q36-5273 | |
| HTTP Request Smuggling | |
| Improper Input Validation | |
| GHSA-hh9p-6wh2-4mfc | |
| GHSA-4gmw-gg2m-w46p | |
| XML External Entity (XXE) Injection | |
| GHSA-vfmq-68hx-4jfw | |
| Information Exposure | |
| GHSA-mq44-7p77-q5h7 | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-38gx-cfqf-f652 | |
| GHSA-fjr4-x663-mwxc | |
| GHSA-6p8h-3wgx-97gf | |
| GHSA-3rp5-jjmw-4wv2 | |
| GHSA-r9mr-m37c-5fr3 | |
| GHSA-94p4-4cq8-9g67 | |
| GHSA-hm4w-wwcw-mr6r | |
| GHSA-pmv8-rq9r-6j72 | |
| GHSA-mwf2-3pr3-8698 | |
| Resource Exhaustion | |
| GHSA-8ppf-4f7h-5ppj | |
| GHSA-7q8q-rj6j-mhjq | |
| Resource Exhaustion | |
| GHSA-c2j3-45gr-mqc4 | |
| GHSA-gcfj-64vw-6mp9 | |
| GHSA-v396-v7q4-x2qj | |
| GHSA-hcpx-6fm6-wx23 | |
| GHSA-f4gw-2p7v-4548 | |
| GHSA-42h9-826w-cgv3 | |
| GHSA-xj6q-8x83-jv6g | |
| Algorithmic Complexity | |
| GHSA-2f96-g7mh-g2hx | |
| GHSA-52cp-r559-cp3m | |
| GHSA-mmx7-hfxf-jppx | |
| GHSA-956x-8gvw-wg5v | |
| GHSA-rwj8-pgh3-r573 | |
| GHSA-jqh4-m9w3-8hp9 | |
| Insufficient Comparison | |
| GHSA-67hx-6x53-jw92 | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Authentication | |
| GHSA-777c-7fjr-54vf | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| CRLF Injection | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Improper Encoding or Escaping of Output | |
| GHSA-pjwm-pj3p-43mv | |
| Improper Certificate Validation | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| GHSA-6chq-wfr3-2hj9 | |
| Server-Side Request Forgery (SSRF) | |
| Permissive Whitelist | |
| GHSA-h67p-54hq-rp68 | |
| GHSA-r6ph-v2qm-q3c2 | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-vf2m-468p-8v99 | |
| GHSA-w9j2-pvgh-6h63 | |
| Server-Side Request Forgery (SSRF) | |
| Arbitrary Code Injection | |
| GHSA-mh29-5h37-fv8m | |
| GHSA-hpj7-wq8m-9hgp | |
| GHSA-2fqr-mr3j-6wp8 | |
| Open Redirect | |
| CVE-2026-26007 | |
| GHSA-63hw-fmq6-xxg2 | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| GHSA-m959-cc7f-wv43 | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-4fvr-rgm6-gqmc | |
| GHSA-fjrm-76x2-c4q4 | |
| GHSA-9x8q-7h8h-wcw9 | |
| GHSA-pf86-5x62-jrwf | |
| GHSA-3p68-rc4w-qgx5 | |
| Information Exposure | |
| GHSA-3w6x-2g7m-8v23 | |
| GHSA-3g43-6gmg-66jw | |
| GHSA-j5f8-grm9-p9fc | |
| HTTP Response Splitting | |
| GHSA-4hjh-wcwx-xvwj | |
| GHSA-q8qp-cvcw-x6jj | |
| GHSA-g3cq-j2xw-wf74 | |
| GHSA-43fc-jf86-j433 | |
| GHSA-6v7p-g79w-8964 | |
| GHSA-pmwg-cvhr-8vh7 | |
| GHSA-xx6v-rp6x-q39c | |
| Allocation of Resources Without Limits or Throttling | |
| Permissive Whitelist | |
| Improper Resource Shutdown or Release | |
| Improper Check for Unusual or Exceptional Conditions | |
| GHSA-445q-vr5w-6q77 | |
| Information Exposure | |
| Algorithmic Complexity | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| GHSA-35jp-ww65-95wh | |
| GHSA-xcgm-r5h9-7989 | |
| GHSA-62hf-57xw-28j9 | |
| GHSA-m7pr-hjqh-92cm | |
| GHSA-898c-q2cr-xwhg | |
| GHSA-5c9x-8gcm-mpgx | |
| GHSA-4m7w-qmgq-4wj5 | |
| GHSA-fvcv-3m26-pcqx | |
| HTTP Response Splitting | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Validation of Certificate with Host Mismatch | |
| GHSA-xhjh-pmcv-23jw | |
| GHSA-537c-gmf6-5ccf | |
| Allocation of Resources Without Limits or Throttling | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-p92q-9vqr-4j8v | |
| Improper Initialization | |
| Uncontrolled Recursion | |
| GHSA-hfxv-24rg-xrqf | |
| GHSA-w7vc-732c-9m39 | |
| GHSA-993g-76c3-p5m4 | |
| Improper Authentication | |
| Improper Cleanup on Thrown Exception | |
| Resource Exhaustion | |
| GHSA-xgmm-8j9v-c9wx | |
| GHSA-jq35-7prp-9v3f | |
| Improper Verification of Cryptographic Signature | |
| GHSA-fhv5-28vv-h8m8 | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Origin Validation Error | |
| GHSA-hg6j-4rv6-33pg | |
| GHSA-jg22-mg44-37j8 | |
| Deserialization of Untrusted Data | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| GHSA-qccp-gfcp-xxvc | |
| Information Exposure | |
| GHSA-mf9v-mfxr-j63j | |
| GHSA-rpm5-65cw-6hj4 | |
| Arbitrary Argument Injection | |
| GHSA-x2qx-6953-8485 | |
| GHSA-v87r-6q3f-2j67 | |
| GHSA-7545-fcxq-7j24 | |
| Directory Traversal | |
| OS Command Injection | |
| Arbitrary Code Injection | |
| GHSA-mv93-w799-cj2w | |
| CVE-2026-33033 | |
| CVE-2026-4292 | |
| CVE-2026-3902 | |
| GHSA-mvfq-ggxm-9mc5 | |
| GHSA-5mf9-h53q-7mhq | |
| GHSA-mmwr-2jhp-mc7j | |
| CVE-2026-4277 | |
| CVE-2026-33034 | |
| GHSA-933h-hp56-hf7m | |
| GHSA-pwjp-ccjc-ghwg | |
| GHSA-wj6h-64fc-37mp | |
| Information Exposure | |
| GHSA-2xpw-w6gg-jr37 | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| Allocation of Resources Without Limits or Throttling | |
| Insecure Temporary File | |
| HTTP Response Splitting | |
| Open Redirect | |
| HTTP Response Splitting | |
| GHSA-mwh4-6h8g-pg8w | |
| Information Exposure | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-p998-jp59-783m | |
| GHSA-966j-vmvw-g2g9 | |
| HTTP Response Splitting | |
| GHSA-w2fm-2cpv-w7v5 | |
| GHSA-hcc4-c3v8-rx92 | |
| GHSA-gc5v-m9x4-r6x2 | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| GHSA-63hf-3vf5-4wqf | |
| GHSA-pq67-6m6q-mj2v | |
| GHSA-38jv-5279-wg99 | |
| GHSA-5239-wwwm-4pmq | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-9f5j-8jwj-x28g | |
| GHSA-c427-h43c-vf67 | |
| GHSA-m5qp-6w8w-w647 | |
| Improper Input Validation | |
| GHSA-gm62-xv2j-4w53 | |
| Directory Traversal | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-2vrm-gr82-f7m5 | |
| GHSA-3wq7-rqq7-wx6j | |
| GHSA-5pwr-322w-8jr4 | |
| GHSA-752w-5fwx-jx9f | |
| Insufficient Verification of Data Authenticity | |
| GHSA-pxrr-hq57-q35p | |
| Not Failing Securely ('Failing Open') | |
| Arbitrary Code Injection | |
| GHSA-jr27-m4p2-rc6r | |
| Uncontrolled Recursion | |
| Buffer Overflow | |
| GHSA-vp96-hxj8-p424 | |
| GHSA-8p8v-wh79-9r56 | |
| CVE-2025-69534 | |
| GHSA-5wmx-573v-2qwq | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-mjgh-79qc-68w3 | |
| CVE-2026-25674 | |
| CVE-2025-14550 | |
| CVE-2026-1287 | |
| GHSA-2mcm-79hx-8fxw | |
| GHSA-33mw-q7rj-mjwj | |
| GHSA-4rrr-2h4v-f3j9 | |
| CVE-2026-1312 | |
| GHSA-mwm9-4648-f68q | |
| CVE-2026-1285 | |
| GHSA-6426-9fv3-65x8 | |
| CVE-2026-1207 | |
| GHSA-gvg8-93h5-g6qq | |
| CVE-2025-13473 | |
| GHSA-8rrh-rw8j-w5fx | |
| CVE-2026-1703 | |
| GHSA-6vgw-5pg2-w6jp | |
| CVE-2026-0994 | |
| Directory Traversal | |
| GHSA-7gcm-g887-7qv7 | |
| Link Following | |
| Deserialization of Untrusted Data | |
| GHSA-qmgc-5h2g-mvrw | |
| Directory Traversal | |
| GHSA-58pv-8j8x-9vj2 | |
| GHSA-jm66-cg57-jjv5 | |
| Directory Traversal | |
| GHSA-g84x-mcqj-x9qq | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| GHSA-6mq8-rvhq-8wgg | |
| GHSA-jj3x-wxrx-4x23 | |
| Logging of Excessive Data | |
| GHSA-69f9-5gxw-wvc2 | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-fh55-r93g-j68g | |
| GHSA-6jhg-hg63-jvvf | |
| GHSA-54jq-c3m8-4m76 | |
| GHSA-mqqc-3gqh-h2x8 | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |
| Link Following | |
| GHSA-w853-jp5j-5j7f | |
| CVE-2025-64460 | |
| GHSA-rqw2-ghq9-44m7 | |
| CVE-2025-13372 | |
| GHSA-vrcr-9hj9-jcg6 | |
| Special Element Injection | |
| Improper Encoding or Escaping of Output | |
| SQL Injection | |
| Directory Traversal | |
| SQL Injection | |
| CVE-2025-4565 | |
| Improper Output Neutralization for Logs | |
| CVE-2025-32873 | |
| CVE-2025-26699 | |
| CVE-2024-56374 | |
| CVE-2024-52304 | |
| CVE-2024-53907 | |
| CVE-2024-53908 | |